bind: named crash when handling malformed NSEC3-signed zones
Published Jan 14, 2014
2.6
LOWCVSS 2.0
EPSS 31.67%
Description
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.
Affected products
No data.
- 9.6
- 9.6
- 9.6
- 9.6
- 9.6
- 9.6
- 9.6
- 9.6
- 9.6.0
- 9.6.0
- 9.6.0
- 9.6.0
- 9.6.1
- 9.6.1
- 9.6.1
- 9.6.1
- 9.6.1
- 9.6.2
- 9.6.2
- 9.6.3
- 9.6.3
- 9.7.0
- 9.7.0
- 9.7.0
- 9.7.0
- 9.7.0
- 9.7.0
- 9.7.1
- 9.7.1
- 9.7.1
- 9.7.1
- 9.7.2
- 9.7.2
- 9.7.2
- 9.7.2
- 9.7.2
- 9.7.3
- 9.7.3
- 9.7.3
- 9.7.3
- 9.7.4
- 9.7.4
- 9.7.4
- 9.7.4
- 9.7.5
- 9.7.5
- 9.7.5
- 9.7.5
- 9.7.6
- 9.7.6
- 9.7.6
- 9.7.7
- 9.8.0
- 9.8.0
- 9.8.0
- 9.8.0
- 9.8.0
- 9.8.0
- 9.8.0
- 9.8.1
- 9.8.1
- 9.8.1
- 9.8.1
- 9.8.1
- 9.8.1
- 9.8.2
- 9.8.2
- 9.8.2
- 9.8.3
- 9.8.3
- 9.8.3
- 9.8.4
- 9.8.5
- 9.8.5
- 9.8.5
- 9.8.5
- 9.8.5
- 9.8.5
- 9.8.5
- 9.8.6
- 9.8.6
- 9.8.6
- 9.8.6
- 9.8.6
- 9.9.4
- 9.9.4
- 9.9.4
- 9.9.4
No data.
Red Hat Enterprise Linux 5
bind97-32:9.7.0-21.P2.el5
Fixed · RHSA-2014:1244
Red Hat Enterprise Linux 6
bind-32:9.8.2-0.23.rc1.el6_5.1
Fixed · RHSA-2014:0043
Red Hat Enterprise Linux 5
bind
Not affected
Red Hat Enterprise Linux 7
bind
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | bind97-32:9.7.0-21.P2.el5 | Fixed | RHSA-2014:1244 |
| Red Hat Enterprise Linux 6 | bind-32:9.8.2-0.23.rc1.el6_5.1 | Fixed | RHSA-2014:0043 |
| Red Hat Enterprise Linux 5 | bind | Not affected | n/a |
| Red Hat Enterprise Linux 7 | bind | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue does not affect the version of bind and bind97 as shipped with Red Hat Enterprise Linux 5. For a technical explanation please see https://bugzilla.redhat.com/show_bug.cgi?id=1051717#c25
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:H/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (46 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 31.67% (0.31671) | 98.25th | v5 (v2026.06.15) |
| Jun 24, 2026 | 31.67% (0.31671) | 98.07th | v5 (v2026.06.15) |
| Jun 15, 2026 | 32.78% (0.32780) | 98.12th | v5 (v2026.06.15) |
| Mar 4, 2026 | 51.54% (0.51542) | 97.83th | v4 (v2025.03.14) |
| Mar 3, 2026 | 62.03% (0.62030) | 98.32th | v4 (v2025.03.14) |
| Mar 1, 2026 | 49.57% (0.49571) | 97.75th | v4 (v2025.03.14) |
| Feb 4, 2026 | 37.85% (0.37852) | 97.10th | v4 (v2025.03.14) |
| Feb 1, 2026 | 49.57% (0.49571) | 97.73th | v4 (v2025.03.14) |
| Jan 4, 2026 | 37.85% (0.37852) | 97.07th | v4 (v2025.03.14) |
| Jan 1, 2026 | 49.57% (0.49571) | 97.71th | v4 (v2025.03.14) |
| Dec 4, 2025 | 37.85% (0.37852) | 97.03th | v4 (v2025.03.14) |
| Dec 1, 2025 | 49.57% (0.49571) | 97.68th | v4 (v2025.03.14) |
| Nov 30, 2025 | 37.85% (0.37852) | 97.03th | v4 (v2025.03.14) |
| Nov 4, 2025 | 41.09% (0.41086) | 97.21th | v4 (v2025.03.14) |
| Nov 1, 2025 | 52.79% (0.52788) | 97.82th | v4 (v2025.03.14) |
| Oct 19, 2025 | 41.09% (0.41086) | 97.20th | v4 (v2025.03.14) |
| Oct 4, 2025 | 43.55% (0.43549) | 97.41th | v4 (v2025.03.14) |
| Oct 1, 2025 | 55.16% (0.55161) | 98.00th | v4 (v2025.03.14) |
| Sep 4, 2025 | 43.55% (0.43549) | 97.44th | v4 (v2025.03.14) |
| Sep 1, 2025 | 55.16% (0.55161) | 97.99th | v4 (v2025.03.14) |
| Aug 6, 2025 | 43.55% (0.43549) | 97.40th | v4 (v2025.03.14) |
| Aug 1, 2025 | 55.16% (0.55161) | 97.96th | v4 (v2025.03.14) |
| Jul 5, 2025 | 43.55% (0.43549) | 97.36th | v4 (v2025.03.14) |
| Jul 1, 2025 | 55.16% (0.55161) | 97.92th | v4 (v2025.03.14) |
| Jun 4, 2025 | 43.55% (0.43549) | 97.34th | v4 (v2025.03.14) |
| Jun 1, 2025 | 55.16% (0.55161) | 97.91th | v4 (v2025.03.14) |
| May 17, 2025 | 43.55% (0.43549) | 97.34th | v4 (v2025.03.14) |
| May 4, 2025 | 46.83% (0.46827) | 97.50th | v4 (v2025.03.14) |
| May 1, 2025 | 58.23% (0.58227) | 98.05th | v4 (v2025.03.14) |
| Apr 12, 2025 | 46.83% (0.46827) | 97.44th | v4 (v2025.03.14) |
| Apr 11, 2025 | 63.64% (0.63637) | 98.28th | v4 (v2025.03.14) |
| Apr 7, 2025 | 52.90% (0.52895) | 97.74th | v4 (v2025.03.14) |
| Apr 6, 2025 | 63.64% (0.63637) | 98.27th | v4 (v2025.03.14) |
| Mar 30, 2025 | 52.90% (0.52895) | 97.73th | v4 (v2025.03.14) |
| Mar 29, 2025 | 70.05% (0.70050) | 98.19th | v4 (v2025.03.14) |
| Mar 28, 2025 | 63.64% (0.63637) | 98.26th | v4 (v2025.03.14) |
| Mar 27, 2025 | 52.90% (0.52895) | 97.59th | v4 (v2025.03.14) |
| Mar 26, 2025 | 63.64% (0.63637) | 98.27th | v4 (v2025.03.14) |
| Mar 17, 2025 | 52.90% (0.52895) | 97.69th | v4 (v2025.03.14) |
| Dec 12, 2024 | 63.69% (0.63692) | 97.97th | v3 (v2023.03.01) |
| Aug 26, 2023 | 63.69% (0.63692) | 97.41th | v3 (v2023.03.01) |
| Jul 10, 2023 | 60.02% (0.60016) | 97.27th | v3 (v2023.03.01) |
| Mar 30, 2023 | 52.45% (0.52445) | 97.02th | v3 (v2023.03.01) |
| Mar 7, 2023 | 44.70% (0.44703) | 96.77th | v3 (v2023.03.01) |
| Mar 6, 2023 | 26.38% (0.26383) | 97.10th | v2 (v2022.01.01) |
| Feb 4, 2022 | 26.38% (0.26383) | 95.72th | v2 (v2022.01.01) |
References (36)
- http://archives.neohapsis.com/archives/bugtraq/2014-10/0103.html vendor-advisoryx_refsource_APPLE
- http://linux.oracle.com/errata/ELSA-2014-1244 x_refsource_CONFIRM
- http://lists.fedoraproject.org/pipermail/package-announce/2014-January/126761.html vendor-advisoryx_refsource_FEDORA
- http://lists.fedoraproject.org/pipermail/package-announce/2014-January/126772.html vendor-advisoryx_refsource_FEDORA
- http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00009.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2014-02/msg00016.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2014-02/msg00019.html vendor-advisoryx_refsource_SUSE
- http://marc.info/?l=bugtraq&m=138995561732658&w=2 vendor-advisoryx_refsource_HP
- http://osvdb.org/101973 vdb-entryx_refsource_OSVDB
- http://rhn.redhat.com/errata/RHSA-2014-0043.html vendor-advisoryx_refsource_REDHAT
- http://secunia.com/advisories/56425 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56427 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56442 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56493 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56522 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56574 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/56871 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/61117 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/61199 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/61343 third-party-advisoryx_refsource_SECUNIA
- http://www.debian.org/security/2014/dsa-3023 vendor-advisoryx_refsource_DEBIAN
- http://www.freebsd.org/security/advisories/FreeBSD-SA-14:04.bind.asc vendor-advisoryx_refsource_FREEBSD
- http://www.mandriva.com/security/advisories?name=MDVSA-2014:002 vendor-advisoryx_refsource_MANDRIVA
- http://www.securityfocus.com/bid/64801 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1029589 vdb-entryx_refsource_SECTRACK
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2014&m=slackware-security.518391 vendor-advisoryx_refsource_SLACKWARE
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2014&m=slackware-security.524465 vendor-advisoryx_refsource_SLACKWARE
- http://www.ubuntu.com/usn/USN-2081-1 vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/security/cve/CVE-2014-0591 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1051717 x_refsource_CONFIRMIssue Tracking
- https://kb.isc.org/article/AA-01078 x_refsource_CONFIRMVendor Advisory
- https://kb.isc.org/article/AA-01078/0
- https://kb.isc.org/article/AA-01085 x_refsource_CONFIRMVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2014-0591
- https://support.apple.com/kb/HT6536 x_refsource_CONFIRM
- https://www.cve.org/CVERecord?id=CVE-2014-0591
Change history (0)
No recorded changes yet.